Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Community Member

Access point register on anchor wlc in DMZ

Hello,

I have an environment in which two WLC 4400 are connected to an anchor WLC 4400 in DMZ, This WLC in DMZ pass the Guest Wlan to other two WLC and terminate tunnel CAPWAP. The Ap in the remote sites, that are configure to register to WLCs in the remote sites, usually are registered on the two WLCs but sometimes they register to WLC in DMZ, how is possible if between WLC in DMZ and other WLC there is a firewall that block all the traffic except CAPWAP traffic? 

If I reboot the APs they register on the two correct WLCs in remote sites.

Thanks

1 REPLY
Community Member

Re: Access point register on anchor wlc in DMZ

AP also uses CAPWAP.  you should only allow capwap connection from internal controllers only on the fw.

445
Views
0
Helpful
1
Replies
CreatePlease to create content